Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

I've never seen so many BSODs


  • Please log in to reply
12 replies to this topic

#1 TaxSleuth

TaxSleuth

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 22 December 2011 - 10:26 PM

Okay, this is going to be a bit vague because when that BSD flashes it's not there for very long.

Lately, my PC (XP SP2) has started to act very badly. I have done the virus cleaning route and thanks to
some nice people, I am pretty sure it is not infected.

BUT, I have been getting lots of BSDs which are really horrible. They are not consistently any one particular error.
Sometimes it's the IRQ error. Other times it's the PFN_LIST_CORRUPT error. Right now--nothing is happening. I got
Norton Utilities and ran every utility I could think of. I also have Driver Detective and it says all my drivers
are up to date.

I was wondering if there were some good disk diagnostics that can help pinpoint the problem.

Can some kind soul point me in the right direction diagnostically?

Charles

PS I cannot run a CHKDSK cleanly. It says there are errors, when I do the CHKDSK /F it does
that routine but apparently doesn't fix it.

Edited by TaxSleuth, 22 December 2011 - 10:39 PM.


BC AdBot (Login to Remove)

 


#2 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:01:46 AM

Posted 22 December 2011 - 11:21 PM

Hello -
BSOD VIEW -
To further help us can you please follow these directions for Blue Screen View -
Download/install BlueScreenView, http://www.nirsoft.net/utils/blue_screen_view.html .
Double-click BlueScreenView.exe file.
When autoscan is done (screen comes up), click Edit/Select All...then File/Save Selected Items.
Save the report as BSOD.txt.
Open BSOD.txt in Notepad, copy all content and paste it into your next reply -

Thank You -
EDIT - When you run chkdsk next time, use /r not /f

Edited by noknojon, 22 December 2011 - 11:23 PM.


#3 hamluis

hamluis

    Moderator


  • Moderator
  • 55,735 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Killeen, TX
  • Local time:10:46 AM

Posted 23 December 2011 - 09:41 AM

FWIW: The fact that drivers are current...doesn't change the fact that they may be damaged...and capable of creating problems.

Louis

#4 TaxSleuth

TaxSleuth
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 23 December 2011 - 10:57 AM

Louis:

This is why you are an expert, and I am thankful for your wise counsel.

Charles

#5 TaxSleuth

TaxSleuth
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 23 December 2011 - 11:08 AM

Here's BSOD.TXT

==================================================
Dump File : Mini121911-06.dmp
Crash Time : 12/19/11 3:02:25 PM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 0x13980228
Parameter 2 : 0x00000002
Parameter 3 : 0x00000000
Parameter 4 : 0x804f93ce
Caused By Driver : ntkrnlpa.exe
Caused By Address : ntkrnlpa.exe+68aab
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.3670 (xpsp_sp2_gdr.100216-1441)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+68aab
Stack Address 1 : ntkrnlpa.exe+223ce
Stack Address 2 : ntkrnlpa.exe+22ceb
Stack Address 3 : ntkrnlpa.exe+dddb4
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121911-06.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121911-05.dmp
Crash Time : 12/19/11 11:51:33 AM
Bug Check String : UNEXPECTED_KERNEL_MODE_TRAP
Bug Check Code : 0x0000007f
Parameter 1 : 0x00000000
Parameter 2 : 0x00000000
Parameter 3 : 0x00000000
Parameter 4 : 0x00000000
Caused By Driver : atapi.sys
Caused By Address : atapi.sys+62ff
File Description : IDE/ATAPI Port Driver
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+21aea
Stack Address 1 : ntkrnlpa.exe+bf895
Stack Address 2 : ntkrnlpa.exe+6662f
Stack Address 3 : ntkrnlpa.exe+28608
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121911-05.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121911-04.dmp
Crash Time : 12/19/11 11:45:07 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 0x019539bc
Parameter 2 : 0x00000002
Parameter 3 : 0x00000000
Parameter 4 : 0x804ff573
Caused By Driver : hal.dll
Caused By Address : hal.dll+2ca4
File Description : Hardware Abstraction Layer DLL
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+68aab
Stack Address 1 : ntkrnlpa.exe+28573
Stack Address 2 : ntkrnlpa.exe+28667
Stack Address 3 : ntkrnlpa.exe+22b6f
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121911-04.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121911-03.dmp
Crash Time : 12/19/11 10:52:49 AM
Bug Check String : PFN_LIST_CORRUPT
Bug Check Code : 0x0000004e
Parameter 1 : 0x00000099
Parameter 2 : 0x000715a5
Parameter 3 : 0x00000007
Parameter 4 : 0x00000000
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+5c58e
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.3670 (xpsp_sp2_gdr.100216-1441)
Processor : 32-bit
Crash Address : ntoskrnl.exe+5c58e
Stack Address 1 : ntoskrnl.exe+4da42
Stack Address 2 : ntoskrnl.exe+13d77
Stack Address 3 : ntoskrnl.exe+1408e
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121911-03.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121911-02.dmp
Crash Time : 12/19/11 10:22:53 AM
Bug Check String : PFN_LIST_CORRUPT
Bug Check Code : 0x0000004e
Parameter 1 : 0x00000099
Parameter 2 : 0x0004c560
Parameter 3 : 0x00000001
Parameter 4 : 0x00000000
Caused By Driver : ntkrnlpa.exe
Caused By Address : ntkrnlpa.exe+21b0f
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.3670 (xpsp_sp2_gdr.100216-1441)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+21b0f
Stack Address 1 : ntkrnlpa.exe+4782f
Stack Address 2 : ntkrnlpa.exe+3f790
Stack Address 3 : ntkrnlpa.exe+3fbd4
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121911-02.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121911-01.dmp
Crash Time : 12/19/11 4:37:18 AM
Bug Check String : KERNEL_MODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000008e
Parameter 1 : 0xc0000005
Parameter 2 : 0x805b6ec3
Parameter 3 : 0xaaf87acc
Parameter 4 : 0x00000000
Caused By Driver : ntkrnlpa.exe
Caused By Address : ntkrnlpa.exe+dfec3
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.3670 (xpsp_sp2_gdr.100216-1441)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+dfec3
Stack Address 1 : ntkrnlpa.exe+dfffd
Stack Address 2 : ntkrnlpa.exe+11607e
Stack Address 3 : ntkrnlpa.exe+d8883
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121911-01.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121811-08.dmp
Crash Time : 12/18/11 11:48:35 PM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 0xa77b9f08
Parameter 2 : 0x00000001
Parameter 3 : 0x00000001
Parameter 4 : 0x8051bdb9
Caused By Driver : ntkrnlpa.exe
Caused By Address : ntkrnlpa.exe+68aab
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.3670 (xpsp_sp2_gdr.100216-1441)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+68aab
Stack Address 1 : ntkrnlpa.exe+44db9
Stack Address 2 : ntkrnlpa.exe+68944
Stack Address 3 : ntkrnlpa.exe+8bfdd
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121811-08.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121811-07.dmp
Crash Time : 12/18/11 10:51:07 PM
Bug Check String : KERNEL_MODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000008e
Parameter 1 : 0xc0000005
Parameter 2 : 0xd64f8af4
Parameter 3 : 0xaacdec50
Parameter 4 : 0x00000000
Caused By Driver :
Caused By Address :
File Description :
Product Name :
Company :
File Version :
Processor : 32-bit
Crash Address :
Stack Address 1 : ntkrnlpa.exe+ddd89
Stack Address 2 : ntkrnlpa.exe+65a48
Stack Address 3 :
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121811-07.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121811-06.dmp
Crash Time : 12/18/11 5:54:53 PM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 0xaac1cffc
Parameter 2 : 0x000000ff
Parameter 3 : 0x00000000
Parameter 4 : 0x80540d4f
Caused By Driver : hal.dll
Caused By Address : hal.dll+2a86
File Description : Hardware Abstraction Layer DLL
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+68aab
Stack Address 1 : ntkrnlpa.exe+69d4f
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121811-06.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121811-05.dmp
Crash Time : 12/18/11 5:26:29 PM
Bug Check String : ATTEMPTED_EXECUTE_OF_NOEXECUTE_MEMORY
Bug Check Code : 0x000000fc
Parameter 1 : 0x00540c32
Parameter 2 : 0x2aa0d025
Parameter 3 : 0xaacd8c54
Parameter 4 : 0x00000000
Caused By Driver : ntkrnlpa.exe
Caused By Address : ntkrnlpa.exe+21b0f
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.3670 (xpsp_sp2_gdr.100216-1441)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+21b0f
Stack Address 1 : ntkrnlpa.exe+450fb
Stack Address 2 : ntkrnlpa.exe+68944
Stack Address 3 :
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121811-05.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121811-04.dmp
Crash Time : 12/18/11 1:37:51 PM
Bug Check String : UNEXPECTED_KERNEL_MODE_TRAP
Bug Check Code : 0x1000007f
Parameter 1 : 0x00000008
Parameter 2 : 0x80042000
Parameter 3 : 0x00000000
Parameter 4 : 0x00000000
Caused By Driver :
Caused By Address :
File Description :
Product Name :
Company :
File Version :
Processor : 32-bit
Crash Address :
Stack Address 1 : ntkrnlpa.exe+65a48
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121811-04.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121811-03.dmp
Crash Time : 12/18/11 12:52:24 PM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 0x00000002
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x804ff30f
Caused By Driver : ntkrnlpa.exe
Caused By Address : ntkrnlpa.exe+68aab
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.3670 (xpsp_sp2_gdr.100216-1441)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+68aab
Stack Address 1 : ntkrnlpa.exe+2830f
Stack Address 2 : ntkrnlpa.exe+28537
Stack Address 3 : ntkrnlpa.exe+69fad
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121811-03.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121811-02.dmp
Crash Time : 12/18/11 12:38:23 PM
Bug Check String : UNEXPECTED_KERNEL_MODE_TRAP
Bug Check Code : 0x0000007f
Parameter 1 : 0x0000000d
Parameter 2 : 0x00000000
Parameter 3 : 0x00000000
Parameter 4 : 0x00000000
Caused By Driver : atapi.sys
Caused By Address : atapi.sys+9729
File Description : IDE/ATAPI Port Driver
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+69227
Stack Address 1 : ntkrnlpa.exe+39527
Stack Address 2 : ntkrnlpa.exe+68944
Stack Address 3 : ntkrnlpa.exe+22c07
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121811-02.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121811-01.dmp
Crash Time : 12/18/11 2:09:03 AM
Bug Check String : UNEXPECTED_KERNEL_MODE_TRAP
Bug Check Code : 0x0000007f
Parameter 1 : 0x0000000d
Parameter 2 : 0x00000000
Parameter 3 : 0x00000000
Parameter 4 : 0x00000000
Caused By Driver : TDI.SYS
Caused By Address : TDI.SYS+4d4
File Description : TDI Wrapper
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+69227
Stack Address 1 : ntkrnlpa.exe+28407
Stack Address 2 : ntkrnlpa.exe+28537
Stack Address 3 : ntkrnlpa.exe+69fad
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121811-01.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121211-08.dmp
Crash Time : 12/12/11 1:18:34 PM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 0x5df00e64
Parameter 2 : 0x00000002
Parameter 3 : 0x00000000
Parameter 4 : 0x804e39b7
Caused By Driver : Ntfs.sys
Caused By Address : Ntfs.sys+533e
File Description : NT File System Driver
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntoskrnl.exe+a892
Stack Address 1 : ntoskrnl.exe+c9b7
Stack Address 2 : ntoskrnl.exe+11737
Stack Address 3 : Ntfs.sys+73b
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121211-08.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121211-07.dmp
Crash Time : 12/12/11 12:27:28 PM
Bug Check String : PFN_LIST_CORRUPT
Bug Check Code : 0x0000004e
Parameter 1 : 0x00000099
Parameter 2 : 0x00038174
Parameter 3 : 0x00000000
Parameter 4 : 0x00000000
Caused By Driver : ntkrnlpa.exe
Caused By Address : ntkrnlpa.exe+21b0f
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.3670 (xpsp_sp2_gdr.100216-1441)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+21b0f
Stack Address 1 : ntkrnlpa.exe+4782f
Stack Address 2 : ntkrnlpa.exe+3f790
Stack Address 3 : ntkrnlpa.exe+3fbd4
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121211-07.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121211-06.dmp
Crash Time : 12/12/11 12:23:23 PM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 0x3489da83
Parameter 2 : 0x00000002
Parameter 3 : 0x00000001
Parameter 4 : 0x804f9b09
Caused By Driver : ntkrnlpa.exe
Caused By Address : ntkrnlpa.exe+68aab
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.3670 (xpsp_sp2_gdr.100216-1441)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+68aab
Stack Address 1 : ntkrnlpa.exe+22b09
Stack Address 2 : ntkrnlpa.exe+dddb4
Stack Address 3 : ntkrnlpa.exe+65a48
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121211-06.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121211-05.dmp
Crash Time : 12/12/11 12:17:21 PM
Bug Check String : PFN_LIST_CORRUPT
Bug Check Code : 0x0000004e
Parameter 1 : 0x00000099
Parameter 2 : 0x00031694
Parameter 3 : 0x00000001
Parameter 4 : 0x00000000
Caused By Driver : ntkrnlpa.exe
Caused By Address : ntkrnlpa.exe+21b0f
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.3670 (xpsp_sp2_gdr.100216-1441)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+21b0f
Stack Address 1 : ntkrnlpa.exe+480b6
Stack Address 2 : ntkrnlpa.exe+48284
Stack Address 3 : ntkrnlpa.exe+3f835
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121211-05.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121211-04.dmp
Crash Time : 12/12/11 11:35:56 AM
Bug Check String : KERNEL_MODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000008e
Parameter 1 : 0x80000003
Parameter 2 : 0x80526d28
Parameter 3 : 0xf6bc5a40
Parameter 4 : 0x00000000
Caused By Driver : win32k.sys
Caused By Address : win32k.sys+b64
File Description : Multi-User Win32 Driver
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.3706 (xpsp_sp2_gdr.100501-1633)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+4fd29
Stack Address 1 : win32k.sys+a3e94
Stack Address 2 : win32k.sys+888fe
Stack Address 3 : win32k.sys+1112
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121211-04.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121211-03.dmp
Crash Time : 12/12/11 10:52:39 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 0x00b1fdb8
Parameter 2 : 0x00000002
Parameter 3 : 0x00000000
Parameter 4 : 0x8050c1a8
Caused By Driver : Ntfs.sys
Caused By Address : Ntfs.sys+26807
File Description : NT File System Driver
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+68aab
Stack Address 1 : ntkrnlpa.exe+351a8
Stack Address 2 : ntkrnlpa.exe+c6c5
Stack Address 3 : Ntfs.sys+2bb75
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121211-03.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121211-02.dmp
Crash Time : 12/12/11 5:44:36 AM
Bug Check String : KERNEL_MODE_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000008e
Parameter 1 : 0xc0000005
Parameter 2 : 0x80505bb6
Parameter 3 : 0xaa96fb14
Parameter 4 : 0x00000000
Caused By Driver : avgntflt.sys
Caused By Address : avgntflt.sys+f240
File Description : Avira Minifilter Driver
Product Name : AntiVir Workstation
Company : Avira GmbH
File Version : 10.00.26.09
Processor : 32-bit
Crash Address : ntkrnlpa.exe+2ebb6
Stack Address 1 : avgntflt.sys+6ec4
Stack Address 2 : avgntflt.sys+71c0
Stack Address 3 : ntkrnlpa.exe+17003
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121211-02.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini121211-01.dmp
Crash Time : 12/12/11 5:40:38 AM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 0x008be42c
Parameter 2 : 0x00000002
Parameter 3 : 0x00000000
Parameter 4 : 0x804ff573
Caused By Driver : hal.dll
Caused By Address : hal.dll+2a86
File Description : Hardware Abstraction Layer DLL
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+68aab
Stack Address 1 : ntkrnlpa.exe+28573
Stack Address 2 : ntkrnlpa.exe+28667
Stack Address 3 : ntkrnlpa.exe+22b6f
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini121211-01.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini111811-03.dmp
Crash Time : 11/18/11 5:44:03 PM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 0xa9d4cffc
Parameter 2 : 0x000000ff
Parameter 3 : 0x00000000
Parameter 4 : 0x80540d4f
Caused By Driver : hal.dll
Caused By Address : hal.dll+22e7
File Description : Hardware Abstraction Layer DLL
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+68aab
Stack Address 1 : ntkrnlpa.exe+69d4f
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini111811-03.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini111811-02.dmp
Crash Time : 11/18/11 5:14:22 PM
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 0x00030169
Parameter 2 : 0x00000002
Parameter 3 : 0x00000000
Parameter 4 : 0x8051068c
Caused By Driver : ntkrnlpa.exe
Caused By Address : ntkrnlpa.exe+68aab
File Description : NT Kernel & System
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.3670 (xpsp_sp2_gdr.100216-1441)
Processor : 32-bit
Crash Address : ntkrnlpa.exe+68aab
Stack Address 1 : ntkrnlpa.exe+3968c
Stack Address 2 : ntkrnlpa.exe+455be
Stack Address 3 : ntkrnlpa.exe+68944
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini111811-02.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

==================================================
Dump File : Mini111811-01.dmp
Crash Time : 11/18/11 5:11:08 PM
Bug Check String : SYSTEM_THREAD_EXCEPTION_NOT_HANDLED
Bug Check Code : 0x1000007e
Parameter 1 : 0xc0000005
Parameter 2 : 0x0000bd0a
Parameter 3 : 0xf78c2bf8
Parameter 4 : 0xf78c28f4
Caused By Driver : fltMgr.sys
Caused By Address : fltMgr.sys+3fbb
File Description : Microsoft Filesystem Filter Manager
Product Name : Microsoft® Windows® Operating System
Company : Microsoft Corporation
File Version : 5.1.2600.2978 (xpsp_sp2_gdr.060821-0039)
Processor : 32-bit
Crash Address :
Stack Address 1 : ntkrnlpa.exe+17003
Stack Address 2 : ntkrnlpa.exe+17003
Stack Address 3 : ntkrnlpa.exe+d889f
Computer Name :
Full Path : C:\WINDOWS\Minidump\Mini111811-01.dmp
Processors Count : 1
Major Version : 15
Minor Version : 2600
Dump File Size : 65,536
==================================================

#6 AustrAlien

AustrAlien

    Inquisitor


  • Members
  • 6,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Cowra NSW Australia
  • Local time:01:46 AM

Posted 24 December 2011 - 06:09 AM

The output from BlueScreenView in this instance is not overly helpful, so we have a good case for gathering some more information. Please do the following steps and I will have a look at the information and see if I can shed some light on your BSOD issue.

Step 1: Download the following 2 files and save both to the My Documents folder:

Step 2: Go to the My Documents folder and run #1 (BSOD_XP_v1.3_jcgriff2_PROD_.exe). (That will also run #2.)

It will take a little time to complete: Please be patient and wait for it to finish.
A new folder named TSF_XP_Support will be created in My Documents.

Step 3: Zip up the newly created TSF_XP_Support folder.
  • Right-click on the TSF_XP_Support folder > Send to ... > Compressed (zipped) Folder.
  • The newly created zip file will be located in the My Documents folder.

Step 4: Please upload the zip file to a file sharing website of your choice and and post a link to it in this thread so that we can access your uploaded zip file.

Note: The BC forums will allow a total attachment size of only 512 kb (and what you need to attach will exceed this limit).
See the suggestions in the following links for recommendations on file sharing websites:
  • http://lifehacker.com/388284/best-online-file-sharing-services
  • http://www.hongkiat.com/blog/15-great-free-online-file-sharing-alternatives/
  • http://www.smashingapps.com/2008/08/28/5-best-free-file-hosting-services-to-store-your-files.html

Step 5: Please Publish a Snapshot using Speccy, and post a link to it in this thread.
  • It is a convenient and accurate way of providing us with details of your computer specifications.

Step 6: Please post any chkdsk logs that have been created in the last 4 - 6 weeks for my review.

A log of the disk check is recorded[/b] only if the scheduled re-start is used, and only for drives on the same HDD as the Operating System.
To open Event Viewer and view the log:
  • Go to Start > Run > and type eventvwr and press the <ENTER> key.
    The Event Viewer window will open.
  • In the left pane, click on Application.
  • In the right pane, at the top, click on the column heading Source to sort the list alphabetically.
  • Look in the Source column for "Winlogon", with an entry corresponding to the date and time of the disk check.
  • Double-click on that entry to view the log.
  • Click on the Posted Image button to copy the log text to the clipboard.
  • Paste the log text into your next reply.

===============================

While I am having a look at your uploaded information, please do the following ...

Step 1: Test the memory (RAM).

Memory needs to be tested outside of Windows, so memtest86+ is run from a bootable CD.

:step1: To make a bootable CD with memtest86+:
  • Extract the downloaded zip file:
    • In Windows XP, right-click on the zip file and choose Extract all.
      The contents of the zip file (the .ISO image file) will be extracted to a folder in the same location as your zip file.
  • Burn the .ISO image to CD: If you do not already have a suitable burning program for writing .ISO images to disc ...
    • Download and install ImgBurn.
    • Ensure that you UN-check the box agreeing to install the Ask toolbar during the installation.
    • Place a new (blank) CD disc in the drive tray.
    • Choose Write image file to disc.
    • Under Source, click on the Browse button: Navigate to and select the .ISO file that you wish to burn.
    • Place a check-mark in the box beside Verify.
  • Click Posted Image
  • When the CD has been burned and verified as successful, it will be bootable.

:step2: Boot from the newly created CD.
  • You may need to configure BIOS or the Boot Menu to boot first from the CD.
  • memtest86+ will begin running automatically: You need do nothing else at this time.
  • Allow memtest86+ to run un-interrupted.
See the screenshots in this informative link: Diagnose with Memtest86+

There MUST be NO errors what-so-ever:
  • If you see an error, stop the test.
  • Then proceed to test each stick of RAM separately to sort the good from the bad.
A minimum test for some confidence in the result, should be 7 full passes (each "pass" is a series of different types of tests), with NO errors.
  • Allow memtest86+ to run for 24 hours for maximum confidence in the test result.
memtest86+ will continue running until you stop it:
  • Press the <ESCAPE> key to re-boot the computer, removing the memtest86+ CD.

Step 2: Test the hard drive. If you tell us the hard drive manufacturer's name (brand name) and model we can point you to the most appropriate diagnostic utility to use. It is best to use the hard drive manufacturer's own diagnostic utility, but Seagate's tool will work OK on most brands. The diagnostic tool is run from a bootable CD (Windows does not need to be working).The first two steps are done on a working computer, while the third step is to boot the ailing computer with the CD that you create in the first two steps.

:step1: Please download SeaTools for DOS (CD) from Seagate's SeaTools for DOS web page

or use the following direct download link to download the latest version of SeaTools for DOS:
Download SeaTools for DOS ISO Image

The downloaded file name is SeaToolsDOS223ALL.ISO
[/list]
:step2: Burn the downloaded .ISO image to a CD using the appropriate burning software.
  • If you do not already have a suitable burning program for writing .ISO images to disc ...
    • Download and install ImgBurn.
      Ensure that you UN-check the box agreeing to install the Ask toolbar during the installation.
    • Place a new (blank) CD disc in the drive tray.
    • Choose Write image file to disc.
    • Under Source, click on the Browse button: Navigate to and select the .ISO file that you wish to burn.
    • Place a check-mark in the box beside Verify.
  • Click Posted Image

    When the CD has been burned and verified as successful, it will be bootable.

:step3: Boot from the CD.
  • (You may need to access the BIOS Setup Menu or the Boot Menu and change the boot order to enable booting from CD before hard drive.)
  • From Basic tests on the Main Menu, run the Short test and then the Long test.

    (The long test will take some considerable time to complete.)
    The results will be shown as either a PASS or FAIL.
    There is a chance that during the Long test, you may be offered the opportunity to attempt repairs on the hard drive:
  • If so, go ahead and attempt to do so, but ONLY after backing up all important personal files.
[/list]Note: You may wish to view the following ...
Please let us know the results of the tests.

When you can, include the make and model number of the problematic hard drive. If you do choose to use SeaTools, you will see the model number (and maybe the make) when SeaTools first detects the hard drive.


Step 3: Run Driver Verifier following the instructions DRIVER VERIFIER - Windows 7 & Vista ... by jcgriff2
  • Notes:
  • There are a few minor differences for XP, but the steps are essentially the same.
    • You will notice that a couple of the options are not available when manually configuring Driver Verifier in XP.
  • Do not omit the first step, to create a System Restore point before enabling Driver Verifier.
  • Run Driver Verifier for 36 hours unless the system crashes. It doesn't matter whether you are using the computer or not during that time.
  • Read the instructions on how to check the Driver Verifier Status.
  • Read the instructions on how To Turn Driver Verifier OFF when you have finished with it.
If your system BSOD’s under the Driver Verifier
  • Locate the dump file:
    • C:\Windows\minidump <<< folder
  • Zip it up and attach the zip file to your next post in this thread.

AustrAlien
Google is my friend. Make Google your friend too.

Posted Image

#7 TaxSleuth

TaxSleuth
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 24 December 2011 - 03:41 PM

AustrAlien:

I am in the process of running the memory test. I really appreciate your
help on this. I can tell I am in the presence of greatness.

I think you wanted me to go ahead and give you all this data now
so here it is.


************************************************************
SPECCY LINK

http://speccy.piriform.com/results/HG8ad5nfiJEuS5236Z6ARFv
************************************************************

Here is the link for TSF_XP_Support.zip

The link is good for 24 hours and 20 downloads apparently.

http://www.streamfile.com/myid/WjUKTXi6SEjB


************************************************************************************

CHECKDISK LOGS

*************************************************************************************
These are the texts from the Eventviewer. There are a number of them. Not all had
to do with CHKDSK. They are in date order


Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1002
Date: 12/23/11
Time: 4:28:57 PM
User: N/A
Computer: CHARLES
Description:
The shell stopped unexpectedly and Explorer.exe was restarted.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1001
Date: 12/22/11
Time: 12:13:52 AM
User: N/A
Computer: CHARLES
Description:
Checking file system on C:
The type of the file system is NTFS.

A disk check has been scheduled.
Windows will now check the disk.
Cleaning up minor inconsistencies on the drive.
Cleaning up 3 unused index entries from index $SII of file 0x9.
Cleaning up 3 unused index entries from index $SDH of file 0x9.
Cleaning up 3 unused security descriptors.
CHKDSK is verifying Usn Journal...
Usn Journal verification completed.
CHKDSK is verifying file data (stage 4 of 5)...
File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
Free space verification is complete.

92068514 KB total disk space.
72946976 KB in 185244 files.
64512 KB in 18859 indexes.
0 KB in bad sectors.
317386 KB in use by the system.
65536 KB occupied by the log file.
18739640 KB available on disk.

4096 bytes in each allocation unit.
23017128 total allocation units on disk.
4684910 allocation units available on disk.

Internal Info:
60 42 03 00 52 1d 03 00 5a 1a 04 00 00 00 00 00 `B..R...Z.......
96 28 00 00 07 00 00 00 3d 04 00 00 00 00 00 00 .(......=.......
1c 5c 35 07 00 00 00 00 3a 3d 35 62 00 00 00 00 .\5.....:=5b....
24 84 d1 03 00 00 00 00 f2 86 53 54 07 00 00 00 $.........ST....
ca 49 3a f2 00 00 00 00 9e df 5c bd 08 00 00 00 .I:.......\.....
99 9e 36 00 00 00 00 00 a8 39 07 00 9c d3 02 00 ..6......9......
00 00 00 00 00 80 54 64 11 00 00 00 ab 49 00 00 ......Td.....I..

Windows has finished checking your disk.
Please wait while your computer restarts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1001
Date: 12/21/11
Time: 7:29:31 PM
User: N/A
Computer: CHARLES
Description:
Checking file system on C:
The type of the file system is NTFS.

One of your disks needs to be checked for consistency. You
may cancel the disk check, but it is strongly recommended
that you continue.
Windows will now check the disk.
Cleaning up minor inconsistencies on the drive.
Cleaning up 45 unused index entries from index $SII of file 0x9.
Cleaning up 45 unused index entries from index $SDH of file 0x9.
Cleaning up 45 unused security descriptors.
CHKDSK is verifying Usn Journal...
Usn Journal verification completed.
CHKDSK is verifying file data (stage 4 of 5)...
File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
Free space verification is complete.

92068514 KB total disk space.
72827648 KB in 184317 files.
63948 KB in 18851 indexes.
0 KB in bad sectors.
318410 KB in use by the system.
65536 KB occupied by the log file.
18858508 KB available on disk.

4096 bytes in each allocation unit.
23017128 total allocation units on disk.
4714627 allocation units available on disk.

Internal Info:
60 42 03 00 ab 19 03 00 83 13 04 00 00 00 00 00 `B..............
94 28 00 00 07 00 00 00 66 04 00 00 00 00 00 00 .(......f.......
fe d6 ce 06 00 00 00 00 0c a0 32 85 00 00 00 00 ..........2.....
26 bb 29 04 00 00 00 00 70 67 af 80 07 00 00 00 &.).....pg......
3e ed 67 07 01 00 00 00 fa 3c da 21 09 00 00 00 >.g......<.!....
99 9e 36 00 00 00 00 00 a8 39 07 00 fd cf 02 00 ..6......9......
00 00 00 00 00 00 0c 5d 11 00 00 00 a3 49 00 00 .......].....I..

Windows has finished checking your disk.
Please wait while your computer restarts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1001
Date: 12/18/11
Time: 8:49:21 PM
User: N/A
Computer: CHARLES
Description:
Checking file system on C:
The type of the file system is NTFS.

A disk check has been scheduled.
Windows will now check the disk.
Cleaning up minor inconsistencies on the drive.
Cleaning up 7 unused index entries from index $SII of file 0x9.
Cleaning up 7 unused index entries from index $SDH of file 0x9.
Cleaning up 7 unused security descriptors.
CHKDSK is verifying Usn Journal...
Usn Journal verification completed.
CHKDSK is verifying file data (stage 4 of 5)...
File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
Free space verification is complete.

92068514 KB total disk space.
72788784 KB in 185977 files.
64352 KB in 19078 indexes.
0 KB in bad sectors.
317874 KB in use by the system.
65536 KB occupied by the log file.
18897504 KB available on disk.

4096 bytes in each allocation unit.
23017128 total allocation units on disk.
4724376 allocation units available on disk.

Internal Info:
60 42 03 00 0b 21 03 00 f4 21 04 00 00 00 00 00 `B...!...!......
96 28 00 00 07 00 00 00 34 04 00 00 00 00 00 00 .(......4.......
88 26 be 06 00 00 00 00 e6 98 cd 85 00 00 00 00 .&..............
18 94 22 04 00 00 00 00 3e 9a 10 97 07 00 00 00 ..".....>.......
ee ae 01 fc 00 00 00 00 0c 67 4c 2d 09 00 00 00 .........gL-....
99 9e 36 00 00 00 00 00 a8 39 07 00 79 d6 02 00 ..6......9..y...
00 00 00 00 00 c0 ac 5a 11 00 00 00 86 4a 00 00 .......Z.....J..

Windows has finished checking your disk.
Please wait while your computer restarts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1001
Date: 12/18/11
Time: 6:28:48 PM
User: N/A
Computer: CHARLES
Description:
Checking file system on C:
The type of the file system is NTFS.


A disk check has been scheduled.
Windows will now check the disk.
Cleaning up minor inconsistencies on the drive.
Cleaning up 199 unused index entries from index $SII of file 0x9.
Cleaning up 199 unused index entries from index $SDH of file 0x9.
Cleaning up 199 unused security descriptors.
CHKDSK is verifying Usn Journal...
Usn Journal verification completed.

92068514 KB total disk space.
72810368 KB in 185930 files.
64340 KB in 19081 indexes.
0 KB in bad sectors.
320942 KB in use by the system.
65536 KB occupied by the log file.
18872864 KB available on disk.

4096 bytes in each allocation unit.
23017128 total allocation units on disk.
4718216 allocation units available on disk.

Internal Info:
60 42 03 00 df 20 03 00 d8 21 04 00 00 00 00 00 `B... ...!......
96 28 00 00 07 00 00 00 f4 04 00 00 00 00 00 00 .(..............
4a 12 ca 06 00 00 00 00 ee 47 fd 85 00 00 00 00 J........G......
30 a1 b1 04 00 00 00 00 00 00 00 00 00 00 00 00 0...............
00 00 00 00 00 00 00 00 c4 fc 5c 9b 00 00 00 00 ..........\.....
99 9e 36 00 00 00 00 00 a8 39 07 00 4a d6 02 00 ..6......9..J...
00 00 00 00 00 00 fe 5b 11 00 00 00 89 4a 00 00 .......[.....J..

Windows has finished checking your disk.
Please wait while your computer restarts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1002
Date: 12/18/11
Time: 3:36:48 PM
User: N/A
Computer: CHARLES
Description:
The shell stopped unexpectedly and Explorer.exe was restarted.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1002
Date: 12/17/11
Time: 10:41:17 PM
User: N/A
Computer: CHARLES
Description:
The shell stopped unexpectedly and Explorer.exe was restarted.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1002
Date: 12/17/11
Time: 10:07:14 PM
User: N/A
Computer: CHARLES
Description:
The shell stopped unexpectedly and Explorer.exe was restarted.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Error
Event Source: Winlogon
Event Category: None
Event ID: 1015
Date: 12/12/11
Time: 12:17:52 PM
User: N/A
Computer: CHARLES
Description:
A critical system process, C:\WINDOWS\system32\lsass.exe, failed with status code c0000005. The machine must now be restarted.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1001
Date: 11/28/11
Time: 1:04:58 PM
User: N/A
Computer: CHARLES
Description:
Checking file system on C:
The type of the file system is NTFS.


One of your disks needs to be checked for consistency. You
may cancel the disk check, but it is strongly recommended
that you continue.
Windows will now check the disk.
Cleaning up minor inconsistencies on the drive.
Cleaning up 54 unused index entries from index $SII of file 0x9.
Cleaning up 54 unused index entries from index $SDH of file 0x9.
Cleaning up 54 unused security descriptors.
CHKDSK is verifying Usn Journal...
Usn Journal verification completed.

92068514 KB total disk space.
69086192 KB in 182568 files.
65460 KB in 18881 indexes.
0 KB in bad sectors.
315510 KB in use by the system.
65536 KB occupied by the log file.
22601352 KB available on disk.

4096 bytes in each allocation unit.
23017128 total allocation units on disk.
5650338 allocation units available on disk.

Internal Info:
70 2d 03 00 f5 12 03 00 78 11 04 00 00 00 00 00 p-......x.......
4a 28 00 00 07 00 00 00 3f 04 00 00 00 00 00 00 J(......?.......
7a ff b6 06 00 00 00 00 52 55 2f 7e 00 00 00 00 z.......RU/~....
8c 0d db 03 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 f6 b8 18 92 00 00 00 00 ................
99 9e 36 00 00 00 00 00 90 35 07 00 28 c9 02 00 ..6......5..(...
00 00 00 00 00 c0 af 78 10 00 00 00 c1 49 00 00 .......x.....I..

Windows has finished checking your disk.
Please wait while your computer restarts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1001
Date: 11/09/11
Time: 6:45:28 PM
User: N/A
Computer: CHARLES
Description:
Checking file system on C:
The type of the file system is NTFS.


A disk check has been scheduled.
Windows will now check the disk.
Cleaning up minor inconsistencies on the drive.
Cleaning up 11 unused index entries from index $SII of file 0x9.
Cleaning up 11 unused index entries from index $SDH of file 0x9.
Cleaning up 11 unused security descriptors.
CHKDSK is verifying Usn Journal...
Usn Journal verification completed.
CHKDSK discovered free space marked as allocated in the
master file table (MFT) bitmap.
Windows has made corrections to the file system.

92068514 KB total disk space.
67120284 KB in 181575 files.
65516 KB in 18719 indexes.
0 KB in bad sectors.
313450 KB in use by the system.
65536 KB occupied by the log file.
24569264 KB available on disk.

4096 bytes in each allocation unit.
23017128 total allocation units on disk.
6142316 allocation units available on disk.

Internal Info:
70 2d 03 00 72 0e 03 00 67 12 04 00 00 00 00 00 p-..r...g.......
0a 28 00 00 07 00 00 00 31 04 00 00 00 00 00 00 .(......1.......
02 18 4e 06 00 00 00 00 02 ba aa 84 00 00 00 00 ..N.............
92 85 b2 03 00 00 00 00 00 00 00 00 00 00 00 00 ................
00 00 00 00 00 00 00 00 ce 5b 51 98 00 00 00 00 .........[Q.....
99 9e 36 00 00 00 00 00 a8 39 07 00 47 c5 02 00 ..6......9..G...
00 00 00 00 00 70 b2 00 10 00 00 00 1f 49 00 00 .....p.......I..

Windows has finished checking your disk.
Please wait while your computer restarts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.


Event Type: Information
Event Source: Winlogon
Event Category: None
Event ID: 1001
Date: 11/09/11
Time: 4:20:11 PM
User: N/A
Computer: CHARLES
Description:
Checking file system on C:
The type of the file system is NTFS.


A disk check has been scheduled.
Windows will now check the disk.
Cleaning up minor inconsistencies on the drive.
Cleaning up 136 unused index entries from index $SII of file 0x9.
Cleaning up 136 unused index entries from index $SDH of file 0x9.
Cleaning up 136 unused security descriptors.
CHKDSK is verifying Usn Journal...
Usn Journal verification completed.

92068514 KB total disk space.
67373836 KB in 181811 files.
65628 KB in 18755 indexes.
0 KB in bad sectors.
311914 KB in use by the system.
65536 KB occupied by the log file.
24317136 KB available on disk.

4096 bytes in each allocation unit.
23017128 total allocation units on disk.
6079284 allocation units available on disk.

Internal Info:
70 2d 03 00 82 0f 03 00 1e 13 04 00 00 00 00 00 p-..............
0b 28 00 00 07 00 00 00 b6 04 00 00 00 00 00 00 .(..............
4e 53 49 06 00 00 00 00 8c 09 9a 84 00 00 00 00 NSI.............
2c 33 01 04 00 00 00 00 00 00 00 00 00 00 00 00 ,3..............
00 00 00 00 00 00 00 00 f8 d0 66 98 00 00 00 00 ..........f.....
99 9e 36 00 00 00 00 00 a8 39 07 00 33 c6 02 00 ..6......9..3...
00 00 00 00 00 30 2c 10 10 00 00 00 43 49 00 00 .....0,.....CI..

Windows has finished checking your disk.
Please wait while your computer restarts.


For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.

Edited by TaxSleuth, 24 December 2011 - 03:43 PM.


#8 AustrAlien

AustrAlien

    Inquisitor


  • Members
  • 6,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Cowra NSW Australia
  • Local time:01:46 AM

Posted 24 December 2011 - 03:59 PM

You have been busy: Well done!

I have your uploaded TSF_XP_Support.zip file and Speccy report on my computer now, and it all seems to be complete. That went well.

It will take me some time to review all the information: I will let you know my findings/suggestions when possible.

In the meantime, keep up the good work, and keep me informed of your progress.

Post edited to attach TaxSleuth's TSF_XP_Support.zip file.

Attached Files


Edited by AustrAlien, 25 December 2011 - 06:28 PM.

AustrAlien
Google is my friend. Make Google your friend too.

Posted Image

#9 AustrAlien

AustrAlien

    Inquisitor


  • Members
  • 6,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Cowra NSW Australia
  • Local time:01:46 AM

Posted 24 December 2011 - 05:55 PM

I cannot run a CHKDSK cleanly. It says there are errors, when I do the CHKDSK /F it does
that routine but apparently doesn't fix it.

Please elaborate on what you are meaning/referring to in the above two statements. Are you referring to the following lines in each log?

Cleaning up minor inconsistencies on the drive.
Cleaning up 3 unused index entries from index $SII of file 0x9.
Cleaning up 3 unused index entries from index $SDH of file 0x9.
Cleaning up 3 unused security descriptors


These entries are normal, and it is not always possible to reduce the number to zero: 3 is a quite acceptable number. It may be necessary to run chkdsk (with the /f or /r switch) two or three times to reduce the number to an acceptable level: Any more than that is usually not necessary.

I have looked at the chkdsk logs that you have posted and all looks well there.
AustrAlien
Google is my friend. Make Google your friend too.

Posted Image

#10 TaxSleuth

TaxSleuth
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 24 December 2011 - 06:31 PM

By "CHKDSK not working" I was referring to the following:

I would run CHKDSK /f and chkdsk /r and it would seem to give
me messages such as "unable to repair". This passes by pretty
quickly on the screen. Also after I would run /f or /r, I would
run chkdsk by itself and it would still indicate disk errors.
Seems to me these should have been fixed.

Anyway, I did not have access to chkdsk logs, so if you're saying
it's working fine, then it's working fine.

Charles

#11 TaxSleuth

TaxSleuth
  • Topic Starter

  • Members
  • 12 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 24 December 2011 - 06:32 PM

Memory test running now. So far so good.

#12 AustrAlien

AustrAlien

    Inquisitor


  • Members
  • 6,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Cowra NSW Australia
  • Local time:01:46 AM

Posted 24 December 2011 - 07:25 PM

I would run CHKDSK /f and chkdsk /r and it would seem to give
me messages such as "unable to repair". This passes by pretty
quickly on the screen. Also after I would run /f or /r, I would
run chkdsk by itself and it would still indicate disk errors.
Seems to me these should have been fixed.

That is puzzling ... unless you were running chkdsk on another drive ... and not on C: drive?

All the chkdsk logs posted are from C: drive. Normally logs are only saved when chkdsk is run on a drive that resides on the same hard drive as the Windows system drive.

The hard drive (WDC WD1200BB) has two partitions:

Partition 0
Partition ID: Disk #0, Partition #0
Disk Letter: E:
File System: FAT32
Volume Serial Number: 423B2BDF
Size: 4.44GB
Used Space: 4.23GB (96%)
Free Space: 213MB (4%)
-----------------------
Partition 1
Partition ID: Disk #0, Partition #1
Disk Letter: C:
File System: NTFS
Volume Serial Number: 00BBFBAA
Size: 88GB
Used Space: 64GB (73%)
Free Space: 23.8GB (27%)


Is it possible that you were running chkdsk on E: drive when you saw the error messages?
Is it possible that you were running chkdsk on a removable (?external) hard drive/drive?

How do you normally start chkdsk?
  • via the Windows command prompt?
  • via Windows Error Checking GUI (graphical user interface)?

AustrAlien
Google is my friend. Make Google your friend too.

Posted Image

#13 AustrAlien

AustrAlien

    Inquisitor


  • Members
  • 6,772 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Cowra NSW Australia
  • Local time:01:46 AM

Posted 25 December 2011 - 05:37 AM

The Application event log file that was gathered is corrupt. I would like you to save the two Event Viewer logs and upload them again.

Please create a new folder on your Desktop, and name it EventLogs.

Go to Start > Run and type eventvwr.msc and press <ENTER>
  • When the Event Viewer window has opened, on the left side, click on System.
  • On the top main menu bar, click Action > Save Log File As ...
  • Enter system as the "File Name" and choose the EventLogs folder on your Desktop as the "Location" to save it.
    (Leave the "Save as type:" as the default setting of "Event Log (*.evt)").
  • Click Save.
Do the same for the Application log:
  • On the left side, click on Application.
  • On the top main menu bar, click Action > Save Log File As ...
  • Enter application as the "File Name" and choose the EventLogs folder on your Desktop as the "Location" to save it.
    (Leave the "Save as type:" as the default setting of "Event Log (*.evt)").
  • Click Save.
Close the Event Viewer window.

At your Desktop, zip up the EventLogs folder and attach the zip file to your next post in this thread.

Edited by AustrAlien, 25 December 2011 - 05:38 AM.

AustrAlien
Google is my friend. Make Google your friend too.

Posted Image




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users